Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File iloveyou.exe received on 2008.05.31 01:27:50 (UTC)
Current status: finished
Result: 16/31 (51.61%)
Antivirus Version Last Update Result
AhnLab-V3 2008.5.30.1 2008.05.30 -
AntiVir 7.8.0.25 2008.05.30 -
Authentium 5.1.0.4 2008.05.31 -
Avast 4.8.1195.0 2008.05.30 -
AVG 7.5.0.516 2008.05.30 I-Worm/Nuwar.R
BitDefender 7.2 2008.05.31 Trojan.Peed.PJ
CAT-QuickHeal 9.50 2008.05.30 Win32.Trojan-Downloader.Cntr.bs.4
ClamAV 0.92.1 2008.05.31 -
DrWeb 4.44.0.09170 2008.05.30 Trojan.Packed.468
eSafe 7.0.15.0 2008.05.29 Suspicious File
eTrust-Vet 31.4.5837 2008.05.30 Win32/Sintun.EY
Ewido 4.0 2008.05.30 -
F-Prot 4.4.4.56 2008.05.31 -
F-Secure 6.70.13260.0 2008.05.31 Email-Worm.Win32.Zhelatin.zb
Fortinet 3.14.0.0 2008.05.30 W32/Tibs.BS!tr.dldr
GData 2.0.7306.1023 2008.05.31 Email-Worm.Win32.Zhelatin.zb
Ikarus T3.1.1.26.0 2008.05.31 -
Kaspersky 7.0.0.125 2008.05.31 Email-Worm.Win32.Zhelatin.zb
McAfee 5307 2008.05.30 -
Microsoft 1.3520 2008.05.31 Backdoor:Win32/Nuwar.A
NOD32v2 3148 2008.05.30 -
Norman 5.80.02 2008.05.30 -
Panda 9.0.0.4 2008.05.31 -
Prevx1 V2 2008.05.31 -
Rising 20.46.42.00 2008.05.30 Packer.Win32.klone.an
Sophos 4.29.0 2008.05.31 Mal/TibsPak
Sunbelt 3.0.1139.1 2008.05.29 -
Symantec 10 2008.05.31 Trojan.Peacomm.D
VBA32 3.12.6.6 2008.05.30 -
VirusBuster 4.3.26:9 2008.05.30 Worm.DR.Zhelatin.Gen!Pac.9
Webwasher-Gateway 6.6.2 2008.05.30 Virus.Win32.FileInfector.gen!90 (suspicious)
Additional information
File size: 158208 bytes
MD5...: 4d924d9a672a34d793a709f803453877
SHA1..: cae99ce8233e4fdebb227d18fcd7b782efe2d720
SHA256: 664537b26bfd44ae906c2e177583996723f17a10572510cd17c9fdfb3cdcca8b
SHA512: 16226bb497c028865110fa5b9702eec6772fd25a217c148f049da39c1e7ded25
77057cf92b06e7953f3343962c449309c0a6635f2cd9f0bd165b91b48c303f06
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x401000
timedatestamp.....: 0x48400f92 (Fri May 30 14:30:42 2008)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x153 0x200 4.89 8421f1f0f9535e5442860bf1082e668f
.data 0x2000 0x747c 0x7600 7.99 9ebf4771f372d484f2e7cc3fe7c3edb0
.rdata 0xa000 0x1eac2 0x1ec00 8.00 435042eb9ef815e92075b48fd63ae2ab
.data 0x29000 0xc 0x200 0.00 bf619eac0cdf3f68d496ea9344137e8b

( 1 imports )
> KERNEL32.dll: GetModuleHandleW

( 0 exports )

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file